Tweaktown 40,000 Twitch Streamers' Data Allegedly Scraped and Sold on Dark Web
Article Content
- •A hacker claims to have stolen data from 40,000 Twitch streamers.
- •The data appears to be scraped rather than stolen directly from Twitch.
- •Twitch has advised users to enhance their security and remove risky browser extensions.
A hacker is offering a database containing personal information of around 40,000 Twitch streamers on a dark web marketplace. The dataset includes usernames, email addresses, legal names, follower counts, and account verification statuses. Researchers believe the data was likely obtained through scraping rather than a direct breach of Twitch, as much of the information is publicly available. However, hidden email addresses suggest potential exploitation of the Twitch API using stolen access tokens. Twitch has not confirmed any breach but has advised users to enhance their account security. The incident raises concerns about targeted phishing risks for streamers, as the aggregated data could facilitate social engineering scams. The database was advertised on September 9, 2026, and researchers have examined a sample of 501 records. Twitch has urged users to remove third-party browser extensions and review their account security settings.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Continue Reading
Critical Cisco FMC Vulnerabilities Under Active Exploitation Cisco's Secure Firewall Management Center (FMC) Software has two critical vulnerabilities, CVE-2026-20079 and CVE-2026-20316, that are currently being exploited by state-sponsored and ransomware actors. CVE-2026-20079, rated 10.0 on the CVSS scale, allows unauthenticated remote attackers to bypass authentication and…
Critical Zero-Day Vulnerability in Cisco Secure Email Gateway Exploited On September 14, 2026, Cisco disclosed a critical SQL injection vulnerability (CVE-2026-76461) in its Secure Email Gateway, allowing unauthenticated remote attackers to execute arbitrary commands with root privileges. This vulnerability arises from insufficient validation in the email parsing logic. Cisco confirmed…